{"id":10433,"date":"2018-02-16T18:39:51","date_gmt":"2018-02-16T18:39:51","guid":{"rendered":"https:\/\/one.sightlinemg.com\/c4isrnet\/uncategorized\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/"},"modified":"2026-08-08T04:33:25","modified_gmt":"2026-08-08T04:33:25","slug":"agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework","status":"publish","type":"post","link":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/","title":{"rendered":"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">Though most U.S. critical infrastructure sectors have taken actions to adopt the National Institute of Standards and Technology\u2019s (NIST) <a href=\"https:\/\/www.federaltimes.com\/2017\/01\/17\/nist-publishes-version-1-1-of-cybersecurity-framework\/\" title=\"\" class=\"\" target=\"_blank\">Framework for Improving Critical Infrastructure Cybersecurity<\/a>, sector-specific agencies responsible for developing guidance failed to develop adequate measures for framework adoption within their cluster, a Feb. 15, 2018, Government Accountability Office report found.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cNone of the SSAs had measured the cybersecurity framework\u2019s implementation by entities within their respective sectors. None of the 16 coordinating councils reported having qualitative or quantitative measures of framework adoption because they generally do not collect specific information from entities about critical infrastructure protection activities. SSA officials also stated that the voluntary nature and other factors are impediments to collecting such information,\u201d the report said.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cUntil SSAs have a more comprehensive understanding of the use of the cybersecurity framework by entities within the critical infrastructure sectors, they will be limited in their ability to understand the success of protection efforts or to determine where to focus limited resources for cyber risk mitigation.\u201d<\/p>\n\n\n\t<aside class=\"smg-interstitial-link wp-block-smg-interstitial-link\">\n\t\t<a href=\"https:\/\/one.sightlinemg.com\/federaltimes\/opinions\/2017\/12\/06\/bridging-the-gap-why-feds-struggle-to-act-on-cybersecurity-mandates-commentary\/\" class=\"smg-interstitial-link__inner\">\n\t\t\t\t\t\t\t<div class=\"smg-interstitial-link__media\">\n\t\t\t\t\t<img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"210\" src=\"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/GettyImages-472227510.jpg.jpg?w=300\" class=\"smg-interstitial-link__image wp-post-image\" alt=\"\" \/>\t\t\t\t<\/div>\n\t\t\t\t\t\t<div class=\"smg-interstitial-link__content\">\n\t\t\t\t<span class=\"smg-interstitial-link__kicker\">Related<\/span>\n\t\t\t\t<h3 class=\"smg-interstitial-link__title\">Bridging the Gap: Why feds struggle to act on cybersecurity mandates [Commentary]<\/h3>\n\t\t\t\t\t\t\t\t\t<p class=\"smg-interstitial-link__excerpt\">You\u2019re undergoing a digital transformation whether you planned to or not.<\/p>\n\t\t\t\t\t\t\t<\/div>\n\t\t<\/a>\n\t<\/aside>\n\t\n\n\n<p class=\"wp-block-paragraph\">After calls from both federal law and policy, NIST developed its cyber framework in 2014. The Cybersecurity Enhancement Act of 2014 provided provisions for GAO to review the implementation of that framework in <a href=\"https:\/\/www.fifthdomain.com\/critical-infrastructure\/2017\/10\/23\/dhs-warns-energy-sector-of-hackers-targeting-third-party-suppliers\/\" title=\"\" class=\"\" target=\"_blank\">critical infrastructure sectors, such as energy<\/a>, financial services and healthcare.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The report also found that officials from the Department of Homeland Security, NIST, SSAs and the sector coordinating councils identified four challenges to cybersecurity framework adoption:<\/p>\n\n\n\n<ul class=\"wp-block-list\"><li>Limited resources;<\/li><li>Lacking knowledge and skills for framework adoption;<br><\/li><li>Regulatory, industry and other requirements that inhibit adopting the framework; and<br><\/li><li>Other priorities taking precedence over framework adoption.<br><\/li><\/ul>\n\n\n\n<p class=\"wp-block-paragraph\">GAO made recommendations to nine sector-specific agencies, calling for each to \u201cdevelop methods for determining the level and type of framework adoption by entities across their respective sector.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Five agencies agreed with the recommendations while four neither agreed nor disagreed, with many of the four stating that they did not have the authority to compel critical infrastructure entities to share cyber framework adoption data.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A Government Accountability Office report found that, without appropriate measures, agencies cannot truly determine the success of NIST cyber framework implementation efforts.<\/p>\n","protected":false},"author":7,"featured_media":26413,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_yoast_wpseo_meta-robots-noindex":"","_yoast_wpseo_meta-robots-nofollow":"","_yoast_wpseo_canonical":"","_acf":"","_yoast_wpseo_primary_category":29,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","_smg_distribution_targets":[]},"categories":[106,29,32],"tags":[],"coauthors":[2869],"class_list":["post-10433","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-daily-brief","category-home","category-newsletters"],"acf":{"subheadline":"","legacy_arc_id":"PIDA6PLV45EZFMWS5XZ35EMZIY","arc_canonical_url":"\/critical-infrastructure\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/","remove_feature_photo":false,"is_sponsored":false,"subtype":"","redirect_url":"","disable_inline_ads":false,"native_logo_pretext":"Presented By:"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.0 (Yoast SEO v28.1) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO - C4ISRNet<\/title>\n<meta name=\"description\" content=\"A Government Accountability Office report found that, without appropriate measures, agencies cannot truly determine the success of NIST cyber framework implementation efforts.\" \/>\n<meta name=\"robots\" content=\"noindex, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO\" \/>\n<meta property=\"og:description\" content=\"A Government Accountability Office report found that, without appropriate measures, agencies cannot truly determine the success of NIST cyber framework implementation efforts.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/\" \/>\n<meta property=\"og:site_name\" content=\"C4ISRNet\" \/>\n<meta property=\"article:published_time\" content=\"2018-02-16T18:39:51+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-08T04:33:25+00:00\" \/>\n<meta name=\"author\" content=\"Jessie Bur\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Jessie Bur\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\n\t    \"@context\": \"https:\\\/\\\/schema.org\",\n\t    \"@graph\": [\n\t        {\n\t            \"@type\": \"Article\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#article\",\n\t            \"isPartOf\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/\"\n\t            },\n\t            \"author\": {\n\t                \"name\": \"migration\",\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/person\\\/cc76c831bb37a926738c8391fca7a3b1\"\n\t            },\n\t            \"headline\": \"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO\",\n\t            \"datePublished\": \"2018-02-16T18:39:51+00:00\",\n\t            \"dateModified\": \"2026-08-08T04:33:25+00:00\",\n\t            \"mainEntityOfPage\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/\"\n\t            },\n\t            \"wordCount\": 332,\n\t            \"commentCount\": 0,\n\t            \"publisher\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#organization\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#primaryimage\"\n\t            },\n\t            \"thumbnailUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/NIST.jpg.jpg\",\n\t            \"articleSection\": [\n\t                \"Daily Brief\",\n\t                \"Home\",\n\t                \"Newsletters\"\n\t            ],\n\t            \"inLanguage\": \"en-US\",\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"CommentAction\",\n\t                    \"name\": \"Comment\",\n\t                    \"target\": [\n\t                        \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#respond\"\n\t                    ]\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"WebPage\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/\",\n\t            \"name\": \"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO - C4ISRNet\",\n\t            \"isPartOf\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#website\"\n\t            },\n\t            \"primaryImageOfPage\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#primaryimage\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#primaryimage\"\n\t            },\n\t            \"thumbnailUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/NIST.jpg.jpg\",\n\t            \"datePublished\": \"2018-02-16T18:39:51+00:00\",\n\t            \"dateModified\": \"2026-08-08T04:33:25+00:00\",\n\t            \"description\": \"A Government Accountability Office report found that, without appropriate measures, agencies cannot truly determine the success of NIST cyber framework implementation efforts.\",\n\t            \"breadcrumb\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#breadcrumb\"\n\t            },\n\t            \"inLanguage\": \"en-US\",\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"ReadAction\",\n\t                    \"target\": [\n\t                        \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/\"\n\t                    ]\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"ImageObject\",\n\t            \"inLanguage\": \"en-US\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#primaryimage\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/NIST.jpg.jpg\",\n\t            \"contentUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/NIST.jpg.jpg\"\n\t        },\n\t        {\n\t            \"@type\": \"BreadcrumbList\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/2018\\\/02\\\/16\\\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\\\/#breadcrumb\",\n\t            \"itemListElement\": [\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 1,\n\t                    \"name\": \"Home\",\n\t                    \"item\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/\",\n\t                    \"ad_zone\": \"home\"\n\t                },\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 2,\n\t                    \"name\": \"Home\",\n\t                    \"item\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/home\\\/\",\n\t                    \"ad_zone\": \"home\"\n\t                },\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 3,\n\t                    \"name\": \"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO\"\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"WebSite\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#website\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/\",\n\t            \"name\": \"C4ISRNet\",\n\t            \"description\": \"Media for the Intelligence-Age Military | C4ISRNET\",\n\t            \"publisher\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#organization\"\n\t            },\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"SearchAction\",\n\t                    \"target\": {\n\t                        \"@type\": \"EntryPoint\",\n\t                        \"urlTemplate\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/?s={search_term_string}\"\n\t                    },\n\t                    \"query-input\": {\n\t                        \"@type\": \"PropertyValueSpecification\",\n\t                        \"valueRequired\": true,\n\t                        \"valueName\": \"search_term_string\"\n\t                    }\n\t                }\n\t            ],\n\t            \"inLanguage\": \"en-US\"\n\t        },\n\t        {\n\t            \"@type\": \"Organization\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#organization\",\n\t            \"name\": \"C4ISRNet\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/\",\n\t            \"logo\": {\n\t                \"@type\": \"ImageObject\",\n\t                \"inLanguage\": \"en-US\",\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/logo\\\/image\\\/\",\n\t                \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/c4isrnet-logo-white.png\",\n\t                \"contentUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/c4isrnet-logo-white.png\",\n\t                \"caption\": \"C4ISRNet\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/logo\\\/image\\\/\"\n\t            }\n\t        },\n\t        {\n\t            \"@type\": \"Person\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/person\\\/cc76c831bb37a926738c8391fca7a3b1\",\n\t            \"name\": \"migration\",\n\t            \"image\": {\n\t                \"@type\": \"ImageObject\",\n\t                \"inLanguage\": \"en-US\",\n\t                \"@id\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=gcf4cb6ee0ec29e49e7a963234e4340ec\",\n\t                \"url\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g\",\n\t                \"contentUrl\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g\",\n\t                \"caption\": \"migration\"\n\t            },\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/author\\\/migration\\\/\"\n\t        }\n\t    ]\n\t}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO - C4ISRNet","description":"A Government Accountability Office report found that, without appropriate measures, agencies cannot truly determine the success of NIST cyber framework implementation efforts.","robots":{"index":"noindex","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"og_locale":"en_US","og_type":"article","og_title":"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO","og_description":"A Government Accountability Office report found that, without appropriate measures, agencies cannot truly determine the success of NIST cyber framework implementation efforts.","og_url":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/","og_site_name":"C4ISRNet","article_published_time":"2018-02-16T18:39:51+00:00","article_modified_time":"2026-08-08T04:33:25+00:00","author":"Jessie Bur","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Jessie Bur","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#article","isPartOf":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/"},"author":{"name":"migration","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/person\/cc76c831bb37a926738c8391fca7a3b1"},"headline":"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO","datePublished":"2018-02-16T18:39:51+00:00","dateModified":"2026-08-08T04:33:25+00:00","mainEntityOfPage":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/"},"wordCount":332,"commentCount":0,"publisher":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#organization"},"image":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#primaryimage"},"thumbnailUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/NIST.jpg.jpg","articleSection":["Daily Brief","Home","Newsletters"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/","url":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/","name":"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO - C4ISRNet","isPartOf":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#website"},"primaryImageOfPage":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#primaryimage"},"image":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#primaryimage"},"thumbnailUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/NIST.jpg.jpg","datePublished":"2018-02-16T18:39:51+00:00","dateModified":"2026-08-08T04:33:25+00:00","description":"A Government Accountability Office report found that, without appropriate measures, agencies cannot truly determine the success of NIST cyber framework implementation efforts.","breadcrumb":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#primaryimage","url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/NIST.jpg.jpg","contentUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/NIST.jpg.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/2018\/02\/16\/agencies-fail-to-adequately-measure-critical-infrastructure-adoption-of-nist-cyber-framework\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/one.sightlinemg.com\/c4isrnet\/","ad_zone":"home"},{"@type":"ListItem","position":2,"name":"Home","item":"https:\/\/one.sightlinemg.com\/c4isrnet\/home\/","ad_zone":"home"},{"@type":"ListItem","position":3,"name":"Agencies haven\u2019t gauged critical infrastructure cybersecurity thoroughly, says GAO"}]},{"@type":"WebSite","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#website","url":"https:\/\/one.sightlinemg.com\/c4isrnet\/","name":"C4ISRNet","description":"Media for the Intelligence-Age Military | C4ISRNET","publisher":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/one.sightlinemg.com\/c4isrnet\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#organization","name":"C4ISRNet","url":"https:\/\/one.sightlinemg.com\/c4isrnet\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/logo\/image\/","url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/06\/c4isrnet-logo-white.png","contentUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/06\/c4isrnet-logo-white.png","caption":"C4ISRNet"},"image":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/person\/cc76c831bb37a926738c8391fca7a3b1","name":"migration","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=gcf4cb6ee0ec29e49e7a963234e4340ec","url":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g","caption":"migration"},"url":"https:\/\/one.sightlinemg.com\/c4isrnet\/author\/migration\/"}]}},"jetpack_sharing_enabled":true,"distributor_meta":false,"distributor_terms":false,"distributor_media":false,"distributor_original_site_name":"C4ISRNet","distributor_original_site_url":"https:\/\/one.sightlinemg.com\/c4isrnet","push-errors":false,"jetpack_featured_media_url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/NIST.jpg.jpg","_links":{"self":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts\/10433","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/comments?post=10433"}],"version-history":[{"count":2,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts\/10433\/revisions"}],"predecessor-version":[{"id":40833,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts\/10433\/revisions\/40833"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts\/26413"}],"wp:attachment":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/media?parent=10433"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/categories?post=10433"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/tags?post=10433"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/coauthors?post=10433"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}